%% You should probably cite rfc5758 instead of this I-D. @techreport{ietf-pkix-sha2-dsa-ecdsa-10, number = {draft-ietf-pkix-sha2-dsa-ecdsa-10}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-pkix-sha2-dsa-ecdsa/10/}, author = {Daniel R. L. Brown and Tim Polk and Stefan Santesson and Kathleen Moriarty and Quynh Dang}, title = {{Internet X.509 Public Key Infrastructure: Additional Algorithms and Identifiers for DSA and ECDSA}}, pagetotal = 8, year = 2009, month = oct, day = 7, abstract = {This document updates RFC 3279 to specify algorithm identifiers and ASN.1 encoding rules for the Digital Signature Algorithm (DSA) and Elliptic Curve Digital Signature Algorithm (ECDSA) digital signatures when using SHA-224, SHA-256, SHA-384, or SHA-512 as the hashing algorithm. This specification applies to the Internet X.509 Public Key infrastructure (PKI) when digital signatures are used to sign certificates and certificate revocation lists (CRLs). This document also identifies all four SHA2 hash algorithms for use in the Internet X.509 PKI. {[}STANDARDS-TRACK{]}}, }